whole-company-325511[.]framer[.]app
“My Framer Site”
whole-company-325511.framer.app — Contenuto non disponibile. Tipo di truffa: Credential Phishing. Riepilogo delle prove: VirusTotal 22 detections (engine total unavailable) (ADMINUSLabs, alphaMountain.ai, BitDefender, Cluster25, CRDF); URLQuery 3 alerts; CF Radar malicious; PhishDestroy score 100/100. Registrar: Framer.
L’analisi dettagliata di PhishDestroy AI resta in inglese per preservare il rapporto forense originale.
PhishDestroy identifies whole-company-325511.framer.app as an active credential theft domain currently distributing malicious content designed to harvest user credentials. This domain is confirmed to be engaged in credential theft activities, posing an elevated risk to unsuspecting visitors. The infrastructure behind this domain is actively operational and has been observed distributing fraudulent login forms mimicking legitimate corporate platforms.
This domain was flagged by 22 of 95 VirusTotal security vendors, indicating significant malicious activity detection. The domain resolves to IP address 31.43.160.6 and utilizes a Let's Encrypt SSL certificate for deceptive legitimacy. The domain is associated with the Framer platform but has been weaponized to facilitate credential harvesting. It has been confirmed to appear on 2 active phishing blocklists, including OpenPhish and PhishingArmy, demonstrating cross-platform threat intelligence coverage. The current status is classified as active with a unique seed identifier of ab74a2.
Current status indicates this credential theft domain remains active and poses an ongoing threat to end users. PhishDestroy recommends immediate avoidance of this domain and any associated links or embedded content. Users who may have interacted with this domain should assume credential compromise and initiate password resets for all affected accounts. Additionally, organizations should consider blocking this domain at the network perimeter using the provided IP address and domain name indicators. Continuous monitoring for credential harvesting attempts and user awareness training are strongly advised to mitigate the risk of credential theft operations.
Informazioni sulla sicurezza di rete
Pipeline di risposta alle minacce
Stato della lista di blocco pubblica
Tecnologie · 4 identified
Framer is a no-code web design platform for designing and publishing responsive websites.
www.framer.com Confidenza al 100%React is an open-source JavaScript library for building user interfaces or UI components.
reactjs.org Confidenza al 100%HTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org Confidenza al 100%HTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org Confidenza al 100%Analisi di VirusTotal
Dati e relazioni esterne
PD-20260506-755247 Recipient: abuse@framer.com Questo sito ti ha influenzato in qualche modo?
Se hai inserito credenziali dell'account, informazioni personali o di pagamento oppure hai scaricato un file da questo dominio, agisci immediatamente. Di seguito sono riportate le risorse per aiutarti a segnalare l'incidente e proteggerti.
Segnalalo alle autorità locali
Seleziona il tuo Paese per ottenere contatti ufficiali del crimine informatico o creare una bozza di reclamo →.
Verifica qualsiasi dominio
Analisi delle minacce utilizzando blocklist archiviate, WHOIS, DNS e prove di scansione pubblica
Scansiona oraSegnala un tentativo di phishing
Segnala i domini sospetti al nostro database delle minacce — proteggi la comunità
SegnalaFeed in tempo reale sulle minacce
Segnalazioni recenti di phishing e modifiche osservate della disponibilità
MonitoraRimani informato, rimani al sicuro
Controlla le minacce in tempo reale oppure contesta questa segnalazione se ritieni che si tratti di un falso positivo